Bavya Arun’s Post

View profile for Bavya Arun, graphic

PGP'26 IIMK | Vulnerability Management, DevSecOps, Data Analytics| VIT Vellore

In recent weeks, a concerning trend has emerged: hackers are no longer just targeting large corporations but are setting their sights on cybersecurity solution providers themselves. This shift poses a significant threat, as many organizations—outsource their cybersecurity to third-party providers, making them indirect but highly vulnerable targets. BeyondTrust just disclosed a compromise of its Remote Support SaaS instances due to a hacked API key. This vulnerability, linked to CVE-2024-12356 and CVE-2024-12686, potentially allowed unauthorized access and command execution in systems with Beyond trust installed across multiple organizations. Organizations can no longer just rely on making sure their attack surface is accounted for, they need look into the security postures of their outsourced protection too https://lnkd.in/gtt-PADg

BT24-10 | BeyondTrust

BT24-10 | BeyondTrust

beyondtrust.com

To view or add a comment, sign in

Explore topics